Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2008-2476

Опубликовано: 03 окт. 2008
Источник: nvd
CVSS2: 9.3
EPSS Средний

Описание

The IPv6 Neighbor Discovery Protocol (NDP) implementation in (1) FreeBSD 6.3 through 7.1, (2) OpenBSD 4.2 and 4.3, (3) NetBSD, (4) Force10 FTOS before E7.7.1.1, (5) Juniper JUNOS, and (6) Wind River VxWorks 5.x through 6.4 does not validate the origin of Neighbor Discovery messages, which allows remote attackers to cause a denial of service (loss of connectivity) or read private network traffic via a spoofed message that modifies the Forward Information Base (FIB).

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:o:force10:ftos:*:*:*:*:*:*:*:*
cpe:2.3:o:freebsd:freebsd:6.3:*:*:*:*:*:*:*
cpe:2.3:o:freebsd:freebsd:7.1:*:*:*:*:*:*:*
cpe:2.3:o:juniper:jnos:*:*:*:*:*:*:*:*
cpe:2.3:o:netbsd:netbsd:*:*:*:*:*:*:*:*
cpe:2.3:o:openbsd:openbsd:4.2:*:*:*:*:*:*:*
cpe:2.3:o:openbsd:openbsd:4.3:*:*:*:*:*:*:*
cpe:2.3:o:windriver:vxworks:*:*:*:*:*:*:*:*
Версия до 6.4 (включая)
cpe:2.3:o:windriver:vxworks:5:*:*:*:*:*:*:*
cpe:2.3:o:windriver:vxworks:5.5:*:*:*:*:*:*:*

EPSS

Процентиль: 94%
0.14849
Средний

9.3 Critical

CVSS2

Дефекты

CWE-20

Связанные уязвимости

debian
почти 17 лет назад

The IPv6 Neighbor Discovery Protocol (NDP) implementation in (1) FreeB ...

github
больше 3 лет назад

The IPv6 Neighbor Discovery Protocol (NDP) implementation in (1) FreeBSD 6.3 through 7.1, (2) OpenBSD 4.2 and 4.3, (3) NetBSD, (4) Force10 FTOS before E7.7.1.1, (5) Juniper JUNOS, and (6) Wind River VxWorks 5.x through 6.4 does not validate the origin of Neighbor Discovery messages, which allows remote attackers to cause a denial of service (loss of connectivity) or read private network traffic via a spoofed message that modifies the Forward Information Base (FIB).

EPSS

Процентиль: 94%
0.14849
Средний

9.3 Critical

CVSS2

Дефекты

CWE-20